CVE Database
/

CVE-2022-48932

Back to search

CVE-2022-48932

Published: Aug 22, 2024

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: net/mlx5: DR, Fix slab-out-of-bounds in mlx5_cmd_dr_create_fte When adding a rule with 32 destinations, we hit the following out-of-band access issue: BUG: KASAN: slab-out-of-bounds in mlx5_cmd_dr_create_fte+0x18ee/0x1e70 This patch fixes the issue by both increasing the allocated buffers to accommodate for the needed actions and by checking the number of actions to prevent this issue when a rule with too many actions is provided.

VendorProductVersions

Linux

Linux

affected
1ffd498901c1134a7cbecf5409e12c064c39cef9 - < 4ad319cdfbe555b4ff67bc608736c46a6930c848
affected
1ffd498901c1134a7cbecf5409e12c064c39cef9 - < 0aec12d97b2036af0946e3d582144739860ac07b

Linux

Linux

affected
5.16
unaffected
0 - < 5.16
unaffected
5.16.12 - <= 5.16.*
unaffected
5.17 - <= *

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now